Vulnerabilities > Flatpress > Flatpress > Low

DATE CVE VULNERABILITY TITLE RISK
2022-06-23 CVE-2021-41432 Cross-site Scripting vulnerability in Flatpress 1.2.1
A stored cross-site scripting (XSS) vulnerability exists in FlatPress 1.2.1 that allows for arbitrary execution of JavaScript commands through blog content.
network
flatpress CWE-79
3.5
2020-12-30 CVE-2020-35241 Cross-site Scripting vulnerability in Flatpress 1.0.3
FlatPress 1.0.3 is affected by cross-site scripting (XSS) in the Blog Content component.
network
flatpress CWE-79
3.5